STIGhubSTIGhub
STIGsRMF ControlsCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • RMF Controls
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 5 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.

NIST 800-53 Controls

Browse 1205 security and privacy controls across 28 families.

Each control is linked to DISA CCI identifiers and STIG checks. Search for fast lookup by control ID or CCI.

Control Families

All Controls1205
AC Access Control143AP Authority and Purpose2AR Accountability, Audit, and Risk Management8AT Awareness and Training17AU Audit and Accountability66CA Assessment, Authorization, and Monitoring31CM Configuration Management66CP Contingency Planning51DI Data Quality and Integrity5DM Data Minimization and Retention6IA Identification and Authentication74IP Individual Participation and Redress6IR Incident Response42MA Maintenance30MP Media Protection26PE Physical and Environmental Protection59PL Planning16PM Program Management37PS Personnel Security18PT PII Processing and Transparency21RA Risk Assessment25SA System and Services Acquisition145SC System and Communications Protection159SE Security2SI System and Information Integrity116SR Supply Chain Risk Management27TR Transparency5UL Use Limitation2

CM — Configuration Management

14 base controls

CM-1Policy and Procedures26 CCIs
CM-2Baseline Configuration9 CCIs
CM-3Configuration Change Control15 CCIs
CM-4Impact Analyses2 CCIs
CM-5Access Restrictions for Change10 CCIs
CM-6Configuration Settings18 CCIs
CM-7Least Functionality4 CCIs
CM-8System Component Inventory29 CCIs
CM-9Configuration Management Plan36 CCIs
CM-10Software Usage Restrictions10 CCIs
CM-11User-Installed Software6 CCIs
CM-12Information Location6 CCIs
CM-13Data Action Mapping1 CCIs
CM-14Signed Components2 CCIs